Show filters
44 Total Results
Displaying 21-30 of 44
Sort by:
Attacker Value
Unknown

CVE-2021-38438

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
A use after free vulnerability in FATEK Automation WinProladder versions 3.30 and prior may be exploited when a valid user opens a malformed project file, which may allow arbitrary code execution.
Attacker Value
Unknown

CVE-2021-38426

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an out-of-bounds write. An attacker could leverage this vulnerability to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-38436

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in a memory-corruption condition. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.
Attacker Value
Unknown

CVE-2021-38440

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
FATEK Automation WinProladder versions 3.30 and prior is vulnerable to an out-of-bounds read, which may allow an attacker to read unauthorized information.
Attacker Value
Unknown

CVE-2021-38434

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an unexpected sign extension. An attacker could leverage this vulnerability to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-38432

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
FATEK Automation Communication Server Versions 1.13 and prior lacks proper validation of user-supplied data, which could result in a stack-based buffer overflow condition and allow an attacker to remotely execute code.
Attacker Value
Unknown

CVE-2021-32931

Disclosure Date: August 11, 2021 (last updated February 23, 2025)
An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
Attacker Value
Unknown

CVE-2021-32947

Disclosure Date: August 11, 2021 (last updated February 23, 2025)
FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-32939

Disclosure Date: August 11, 2021 (last updated February 23, 2025)
FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a project file that may permit arbitrary code execution.
Attacker Value
Unknown

CVE-2021-32988

Disclosure Date: June 29, 2021 (last updated February 22, 2025)
FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code.